VYPR
Medium severity6.5NVD Advisory· Published Apr 11, 2022· Updated Jun 17, 2026

CVE-2022-20063

CVE-2022-20063

Description

In atf (spm), there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS06171715; Issue ID: ALPS06171715.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Google/Android2 versions
    cpe:2.3:o:google:android:10.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:google:android:10.0:*:*:*:*:*:*:*
    • cpe:2.3:o:google:android:9.0:*:*:*:*:*:*:*
  • Mediatek/atfllm-fuzzy
  • MediaTek, Inc./MT6765, MT8385, MT8666, MT8667, MT8766, MT8786, MT8788v5
    Range: Android 9.0, 10.0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.